U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Directory Services Security Checklist Version 1, Release 1.5 Checklist Details (Checklist Revisions)

Supporting Resources:

Target:

Target CPE Name
Microsoft Active Directory cpe:/a:microsoft:active_directory (View CVEs)
Microsoft Windows Server 2000 cpe:/o:microsoft:windows_2000:-:-:server (View CVEs)
Microsoft Windows Server 2003 cpe:/o:microsoft:windows_2003_server:- (View CVEs)

Checklist Highlights

Checklist Name:
Directory Services Security Checklist
Checklist ID:
274
Version:
Version 1, Release 1.5
Type:
Compliance
Review Status:
Archived
Authority:
Governmental Authority: Defense Information Systems Agency
Original Publication Date:
08/28/2009

Checklist Summary:

Directory Services Security Checklist provides the procedures for conducting a Security Readiness Review (SRR) to determine compliance with the requirements in the Directory Services Security Technical Implementation Guide (STIG). This Checklist document must be used together with the corresponding version of the STIG document. This Checklist currently addresses three review subjects: - Generic Directory Service - This subject covers checks for an implementation of a generic directory service. - Generic Directory Synchronization Application - This subject covers checks for an implementation of an application used to perform synchronization on two or more directory service implementations. - Active Directory (AD) Implementation - This subject covers checks for AD Domain Controllers, AD Domains, and the AD Forest that make up an implementation of Active Directory. The procedures in this document are part of the effort to ensure that the security configuration guidelines required by Department of Defense (DoD) Directive 8500.1, Information Assurance, and other relevant guidance are properly implemented. In order to minimize repetition, certain procedures in this document reference information in the Windows 2000 Security Checklist and the Windows Server 2003 Security Checklist. Therefore, familiarity with those documents is considered a prerequisite to this checklist.

Checklist Role:

  • Active Directory Server

Known Issues:

Not provided.

Target Audience:

Not provided.

Target Operational Environment:

  • Managed

Testing Information:

Not provided.

Regulatory Compliance:

Not provided.

Comments/Warnings/Miscellaneous:

Not provided.

Disclaimer:

Not provided.

Product Support:

Not provided.

Point of Contact:

disa.stig_spt@mail.mil

Sponsor:

Not provided.

Licensing:

Not provided.

Change History:

Version 1, Release 1.5 - 08/28/2009
Added Point of Contact - 06 January 2015

Dependency/Requirements:

URL Description

References:

Reference URL Description

NIST checklist record last modified on 05/01/2019